{"id":2852,"date":"2021-05-27T21:28:02","date_gmt":"2021-05-28T02:28:02","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=2852"},"modified":"2021-05-27T21:28:02","modified_gmt":"2021-05-28T02:28:02","slug":"conti-ransomware-targeting-corporate-networks","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/","title":{"rendered":"Conti Ransomware targeting corporate networks"},"content":{"rendered":"\n<p>Conti ransomware is an emerging threat targeting corporate networks that introduces new features that allow it to carry out faster and more targeted attacks. There are also indications that this ransomware shares the same code as Ryuk, which has been slowly fading away, while Conti&#8217;s distribution is increasing.<\/p>\n\n\n\n<p>This ransomware was first seen in isolated attacks in late December 2019. Over time, attacks slowly increased, until late June, when there was an increase in victims. Like other ransomware infections in this category, Conti operators access corporate networks and spread laterally until obtaining domain administrator credentials but&#8230; In reality this threat began to gain recognition in 2020 due to its rapid development also, the Conti News site has published stolen data of at least 180 victims so far.<\/p>\n\n\n\n<p>When this threat is in progress they try to gain administrative privileges and when they do, the attackers deploy ransomware to encrypt the devices. It is not known whether Conti&#8217;s operators also steal files from their victims&#8217; networks before encrypting them. The ransom demand for this ransomware is less than $ 100,000, a relatively low amount compared to other similar ransomware infections.<\/p>\n\n\n\n<p>Something that should be noted about Conti is that it will use multiple ways to encrypt different files simultaneously. While multithreaded ransomware is not new, the use of 32 processes is something of a novelty, allowing ransomware to encrypt a machine at very fast speeds.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What we can do to protect ourselves against Conti<\/h2>\n\n\n\n<p><strong><em>\u25b8<\/em><\/strong>Always have a plan against these threats, you never know when it can happen to you.<\/p>\n\n\n\n<p><strong><em>\u25b8<\/em><\/strong>Close Internet-facing Remote Desktop Protocol to deny cybercriminals access to networks. If you need access to RDP, put it behind a VPN connection and enforce the use of multi-factor authentication.<\/p>\n\n\n\n<p><strong><em>\u25b8<\/em><\/strong>Monitor your network security 24 hours a day, be aware of the five early indicators of the presence of an attacker to stop ransomware attacks before they are launched.<\/p>\n\n\n\n<p><strong><em>\u25b8<\/em><\/strong>Keep regular backups of your most important and current data to an offline storage device.<\/p>\n\n\n\n<p><strong><em>\u25b8<\/em><\/strong>Prevent attackers from accessing and disabling your security &#8211; choose an advanced solution with a cloud-hosted management console with multi-factor authentication enabled and role-based management to limit access rights.<\/p>\n\n\n\n<p>Related reads:<br><a href=\"https:\/\/truxgoservers.com\/blog\/fivehands-is-the-new-ransomware-variant\/\">FiveHands is the new Ransomware Variant<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/lorenz-is-the-new-ransomware-targeting-businesses\/\">Lorenz is the new Ransomware targeting businesses<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/mount-locker-is-an-aggresive-ransomware\/\">Mount Locker is an aggresive Ransomware<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Conti ransomware is an emerging threat targeting corporate networks that introduces new features that allow it to carry out faster and more targeted attacks. There are also indications that this ransomware shares the same code as Ryuk, which has been slowly fading away, while Conti&#8217;s distribution is increasing. This ransomware was first seen in isolated [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2853,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10,16],"tags":[36,105],"class_list":["post-2852","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","category-ransomware","tag-cybersecurity","tag-ransomware"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Conti Ransomware targeting corporate networks - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Attacks against companies are not something new, they are always at risk and Conti Ransomware is a threat that targets them......\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Conti Ransomware targeting corporate networks - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Attacks against companies are not something new, they are always at risk and Conti Ransomware is a threat that targets them......\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2021-05-28T02:28:02+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Conti.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1268\" \/>\n\t<meta property=\"og:image:height\" content=\"664\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"Conti Ransomware targeting corporate networks\",\"datePublished\":\"2021-05-28T02:28:02+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/\"},\"wordCount\":383,\"commentCount\":1,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Conti.jpg\",\"keywords\":[\"Cybersecurity\",\"Ransomware\"],\"articleSection\":[\"Cybersecurity\",\"Ransomware\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/\",\"name\":\"Conti Ransomware targeting corporate networks - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Conti.jpg\",\"datePublished\":\"2021-05-28T02:28:02+00:00\",\"description\":\"Attacks against companies are not something new, they are always at risk and Conti Ransomware is a threat that targets them......\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Conti.jpg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Conti.jpg\",\"width\":1268,\"height\":664},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/conti-ransomware-targeting-corporate-networks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Conti Ransomware targeting corporate networks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Conti Ransomware targeting corporate networks - Truxgo Server Blog","description":"Attacks against companies are not something new, they are always at risk and Conti Ransomware is a threat that targets them......","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/","og_locale":"es_MX","og_type":"article","og_title":"Conti Ransomware targeting corporate networks - Truxgo Server Blog","og_description":"Attacks against companies are not something new, they are always at risk and Conti Ransomware is a threat that targets them......","og_url":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/","og_site_name":"Truxgo Server Blog","article_published_time":"2021-05-28T02:28:02+00:00","og_image":[{"width":1268,"height":664,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Conti.jpg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"Conti Ransomware targeting corporate networks","datePublished":"2021-05-28T02:28:02+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/"},"wordCount":383,"commentCount":1,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Conti.jpg","keywords":["Cybersecurity","Ransomware"],"articleSection":["Cybersecurity","Ransomware"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/","url":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/","name":"Conti Ransomware targeting corporate networks - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Conti.jpg","datePublished":"2021-05-28T02:28:02+00:00","description":"Attacks against companies are not something new, they are always at risk and Conti Ransomware is a threat that targets them......","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Conti.jpg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Conti.jpg","width":1268,"height":664},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/conti-ransomware-targeting-corporate-networks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Conti Ransomware targeting corporate networks"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2852","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=2852"}],"version-history":[{"count":2,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2852\/revisions"}],"predecessor-version":[{"id":2866,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2852\/revisions\/2866"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/2853"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=2852"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=2852"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=2852"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}